Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

IdP (Identity Provider): A web-based system that can authenticate a user on behalf of another system called SP (for Service Provider).

...

Get from your IdP (Probably do not (need to) distribute ours)

File attribute-map.xml

...

IMPORTANT: you must specify at least one attribute whose id is "remoteUser". The Shrine SP code will look for a request attribute of that name to populate the user name variable.

<Attributes xmlns="urn:mace:shibboleth:2.0:attribute-map"

...

xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">

...

<!--

...

The

...

'name'

...

attributes

...

need

...

to

...

match

...

exactly

...

what

...

your

...

IdP

...

sends

...

in

...


...

its

...

response

...

to

...

your

...

(successful)

...

AuthnRequest

...


E.g.

...

-->

...

<Attribute

...

name="ecommonsId"

...

id="

...

remoteUser"/>

...

<Attribute

...

name="Email"

...

id="email"/>

...

<Attribute

...

name="Firstname"

...

id="firstname"/>

...

<Attribute

...

name="Lastname"

...

id="lastname"/>

</Attributes>

Tomcat Configuration

Tomcat should accept requests on port 8009, but only from localhost, and redirect to the SSL port 6443.

...